DellEnterprise Responsibility
HPEIT-Ops Reasoning + Partner AI Orchestration
GreenLake Intelligence (IT Operations 2C)Kamiwaza (AI Workload 2C, via Unleash AI)HPE Data Fabric Policy Engine
AWSIntelligence-2C Toolkit; Placement Implicit
Bedrock GuardrailsAgentCore Policy (GA Mar 2026)AgentCore Evaluations + Memory
VASTGap — placement abstraction, not a reasoning plane
Google CloudComplete Intelligence-2C Plane, No Placement
Agent Identity (GA)Agent GatewayAgent-to-Agent OrchestrationAgent RegistryAgent Observability
VMwareAgent Governance Ships, Placement Does Not
AgentMinder — Agent Identity and Intent GovernanceAgentMinder — Runtime Enforcement GatewayAgentMinder — Agent Observability (OpenTelemetry)MCP Server Governance (VCF 9.1) — Agent Tool Access Facet
Microsoft AzureComplete Intelligence-2C Plane Across Products; Gateway Architect-Wired
Microsoft Entra Agent ID (GA May 1, 2026)Microsoft Agent 365 (GA May 1, 2026)Copilot Studio Multi-Agent Orchestration (GA)Azure API Management AI Gateway Capabilities (GA)
NVIDIARuntime Governance Only — Not a Reasoning Plane
IBMAgentic Control Plane Generally Available; Agent Identity in Preview
watsonx Orchestrate Agentic Control PlaneIBM Bob (Multi-Model Orchestration)IBM Sovereign Core (Runtime Sovereignty)watsonx.governance (Cross-Platform AI Assurance)
Red HatEnforcing Inference Gateway; Agent Governance in Preview
Connectivity Link AI Inference Gateway (Kuadrant/Envoy; Access, Rate, and Token Policies; Generally Available in OpenShift AI 3.4)
Oracle CloudIntelligence 2C: Emerging | Infra 2C: Implicit
OCI Enterprise AI GovernanceAutonomous Database Self-Management
CiscoSecurity + Identity — Not Yet Governance
Duo Agentic IdentityAGNTCY (Linux Foundation — Infrastructure Layer)Cisco AI Defense (Agent Governance Functions)Splunk Observability + Galileo (Agent Evaluation)
PalantirClosest Productized Mechanism
Apollo Orchestration Engine (Constraint Solver)Interaction-Time Policy Reasoning (Ontology)Agent Governance & ObservabilityPersistent, Vendor-Operated Connection (Not Self-Deployable)
KamiwazaDeterministic Enforcement, Partial Plane
Living Ontology (Governance Layer)ReBAC Enforcement (Relationship-Based Access Control)Cross-Environment EvaluationAgent Lifecycle Governance
Articul8Governed Mission Dispatch — Probabilistic Core
ModelMesh™ Intelligence Reasoning PlaneMission Decomposition & Agent RoutingObservability & Auditability
CoreWeaveGap: Improvement Loop, Not a Reasoning Plane
NutanixGateway Governance, No Placement
Agent Gateway (NAI 2.7) — Governed Agent and Model Traffic
DatabricksComplete GA Agent-Governance Plane; Placement Routing Beta
Unity Catalog Agent Governance (App Authorization GA; On-Behalf-Of Auth Public Preview)Mosaic AI Gateway (Serving Endpoints)Agent Bricks Supervisor Agent (Multi-Agent Orchestration)
NetAppNo Reasoning Plane (Data Guardrails ≠ Agent Governance)
QlikBring Your Own Reasoning Plane (MCP-First)
LenovoEnterprise Responsibility
SupermicroEnterprise Responsibility
SalesforceGovernance Without a Reasoning Mechanism
MuleSoft Agent Fabric — Agent Governance (Omni / Flex Gateway)MuleSoft Agent Fabric — Agent Registry & BrokerAgentforce Runtime Governance (Permission Inheritance + Commit-Boundary Enforcement)Agentforce Observability (Command Center)
OpenAIEnterprise Responsibility (Frontier Pre-GA)
AnthropicRuntime Permissions, Not a Reasoning Plane
AMDStructurally Out of Reach Without a Data Layer
PerplexityProduct Controls, Not a Reasoning Plane
Mistral AIGuardrails and Approvals, Not a Governance Plane
SnowflakeDeep Agent Identity, No Gateway, No Native Orchestration
Agent Identity (Delegated and Autonomous Agents, SERVICE_AGENT, Agent Audit Columns)Agent Objects Under Horizon RBAC (Registry Leg, Including Native Apps Agents and MCP Servers)AI Observability + Cortex Agent Evaluations (TruLens Instrumentation, Event-Table Storage, External-App Support)Trust Center: AI Security Posture Management + Strict Data-Movement Policies
ElasticObservability + Workflow Orchestration + Registry; No Agent Identity, No Gateway
Agent + Tool Catalog Under Kibana RBAC and Spaces (Registry Leg)Workflows as Cross-Agent Orchestration (Agent Steps, Workflow Tools, waitForApproval, Versioning)LLM and Agentic-AI Observability (Elastic Observability + Security LLM Integrations)
ServiceNowCross-Enterprise Agent Registry, Containment, Orchestration, Observability; Identity and Gateway Legs Contested
AI Control Tower: Registry and Discovery (Managed and Unmanaged Assets, AI Service Graph Connectors)MCP Governance and Agent Containment in AI Control Tower (Formerly the AI Gateway Application)AI Agent Orchestrator + Action Fabric (MCP Server Console, MCP Client, A2A)Observe: Automated Scoring, Metrics and Trends, Activity Center, Reasoning Traces, CostAgent Identity: Dynamic Users under Role Masking, AI Users, Machine Identity Console, Veza Access Graph
SAPRegistry GA + MCP Gateway GA + Joule Orchestration; Identity, Agent Observability, and A2A Dated H2 2026
SAP AI Agent Hub Registry (LeanIX; Vendor-Agnostic Discovery)MCP Gateway in SAP Integration Suite (GA July 2026)Joule Orchestration Across Agents
CohereAutonomy Policies, Inherited Access, and an Agent Directory, Not a Governance Plane
MongoDBGoverned Agent Access to MongoDB (App Connections, MCP Configurations), Not a Reasoning Plane
CloudflareGateway Over Model Calls + Firewall for LLM Endpoints + Access for MCP Servers; Tool Gateway and Identity in Beta
AI Gateway Control Plane (Rate Limits, Caching, Logging, Dynamic Routing Rules, Guardrails, BYOK, Unified Billing, Cost Tracking)AI Security for Apps (Prompt Injection, PII, and Topic Detection on JSON Requests to LLM Endpoints; WAF Rules on Scores)Cloudflare Access as OAuth for Remote MCP Servers and Portals (Zero Trust Policy over Server Access)
ClouderaData Governance Reaches the Models; Agent Governance Lives Inside Agent Studio
SUSEObservability for AI Workloads + Rancher AI's Supervisor, Agent Configs, and Human-Validation Gates; MCP Gateway in Preview
SUSE Observability for AI Workloads (AI Observability Dashboards GA May 2025; OpenTelemetry Operator, GenAI StackPack, Health Monitors for vLLM, Ollama, Milvus, OpenSearch, GPUs, KServe, Kubeflow)Rancher AI Orchestration (Liz Supervisor, AIAgentConfig, Built-In and Custom MCP Agents, Human Validation Tools, Rancher MCP Server with Read-Only Mode)
RedisACLs and Scoped Keys, Not a Reasoning Plane; Context Retriever's Governed Tools in Preview
DataikuGateway, Govern Registry With Sign-Off and a Deployment Gate on Bundles, Multi-Agent Orchestration, Observability; No First-Class Agent Identity; Agent Management Due October 2026
LLM Mesh Request-Time Gateway (Guardrail Pipelines per Connection, Agent, and Use; Blocking Cost Quotas; Rate Limits; Audit; API-Key Permissions and Caller-Ticket Impersonation; Document-Level Security Tokens)Dataiku Govern GenAI Registry (Agents, Augmented LLMs, Fine-Tuned LLMs and Versions; Standard and Custom Workflows; Feedback and Final Approval Sign-Off; Timeline; Advanced License) + Deployment Governance Policies on Bundles and Model VersionsCross-Agent Orchestration (Agent Hub Orchestrating LLM in Tools or Manual Mode; Structured Visual Agent Delegate, Routing, Parallel, and Reflection Blocks; Agents as Tools; A2A and MCP Endpoints)Observability (LLM Mesh Traces With Guardrail and Cost Spans; Trace Explorer; LangSmith Push; Interaction Logging; Evaluate Agent and Evaluation Stores With Alerting; Agent Review)
ConfluentAgent Governance Lives Inside the Streaming Agent Runtime (RBAC, Audit, Replay); Kafka Is the Coordination Bus, Not a Governance Plane; A2A in Open Preview
Hugging FaceOrganization Governance for People and Tokens, a Tool Server, and a Place to Upload Agent Traces; Not a Plane Over Agents
EverpureAttribute-Based Data Policy for Agents Over MCP and a Human-in-the-Loop Gate on Storage Actions; Not a Plane Over Agents
WEKATenant Isolation and Permission-Aware Retrieval Govern Data, Not Agents; Keycloak Inside AIDP Identifies Users; Not a Plane
CerebrasAccount Controls, Not a Plane: Organizations, Projects, Roles, Rate Limits, Audit Logs; Gateways Are Partners' (Cloudflare AI Gateway, Portkey, Kong, Operant)
NebiusTenant, Project, and Service-Account Identity for People and Automation, Audit Logs in Preview; Nothing Over Agents: Nebius Echo Is a Console Assistant, Sandboxes Are Beta, the Agents Blueprint Is a Reference Architecture
GroqModel Permissions, Project Limits, and Roles Govern Accounts, Not Agents; Compound's Server-Side Tools Take a Per-Request Allow-List and Nothing Else; Remote MCP Approvals and Tool Filters Are Beta